Computer Security
[EN] securityvulns.ru
no-pyccku



Related information

  Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

  IdeaBox <= 1.1 (gorumDir) Remote File Include Vulnerability

  Micro CMS <= 0.3.5 (microcms_path)
Remote File Include Vulnerability

  Grayscale BandSite CMS <=([root_path]
) Remote File Include Vulnerabilities

  [Full-disclosure] Calendar ( Provided by Codewalkers ) - SQL Injection

From::) :) <liz0_(at)_bsdmail.com>
Date:22.06.2006
Subject:Eduha Meeting php shell upload Vulnerabilities

Eduha Meeting php shell upload Vulnerabilities

Site:http://eduha.forever.kz/
Demo:http://nextlevel.astrakhan.ru/meeting/

----------------------------------------------------

Example:

http://victim/path/index.php?act=add

add photo(upload php phpshell)

Bug Video: http://www.biyosecurity.be/video/meeting.rar
-----------------------------------------------------
Credit :Liz0ziM
Website:www.biyo.tk,www.biyosecurity.be
Mail   :liz0@bsdmail.com

------------------------------------------------------

Source:
http://www.blogcu.com/Liz0ziM/716541/
http://biyosecurity.be/bugs/meeting.txt
http://liz0zim.no-ip.org/meeting.txt

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server